StackRadar

mcp-orchestrator 4.0.65 Helm chart

magertronVerified publisher

Scored 6 Oct 2026

MCP Orchestrator — Kubernetes-native control plane for managing MCP servers

Version 4.0.65 todayapp version 4.0.65 1Artifact Hub

mcp-orchestrator 4.0.65 deploys 7 container images: curtismager20/mcp-orchestrator, curtismager20/mcp-sync, curtismager20/mcp-chat-daemon, envoyproxy/envoy and 3 more. Across them, 157 findings — 2 critical, 0 high. The highest contribution is UBUNTU-CVE-2019-9515 in grpc 1.51.1-4.1build5, with no fix listed.

Radar Score

1,8052021134

157 findings over 7 of 7 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

7 images
ImageTagVulnerabilitiesRadar Score
curtismager20/mcp-orchestrator4.0.6520866841
curtismager20/mcp-sync4.0.65001017
curtismager20/mcp-chat-daemon4.0.6500000
envoyproxy/envoydistroless-v1.33.1400722362
library/busybox1.3600000
curtismager20/mcp-inventory4.0.65000548
library/postgres×217-alpine00541537

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

128 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGO-2026-4977stdlib@go1.24.61.25.10
LowGO-2026-4986stdlib@go1.24.61.25.10
LowGO-2026-4918stdlib@go1.24.61.25.10
LowUBUNTU-CVE-2023-4785grpc@1.51.1-4.1build5no fix listed
LowUBUNTU-CVE-2026-42013gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2026-45799grpc@1.51.1-4.1build5no fix listed
LowUBUNTU-CVE-2026-69184c-ares@1.27.0-1.0ubuntu1no fix listed
LowDEBIAN-CVE-2026-4046glibc@2.36-9+deb12u132.36-9+deb12u14
LowGO-2025-4009stdlib@go1.24.61.24.8
LowGO-2025-4006stdlib@go1.24.61.24.8
LowUBUNTU-CVE-2026-82560perl@5.38.2-3.2ubuntu0.6no fix listed
LowDEBIAN-CVE-2026-0915glibc@2.36-9+deb12u132.36-9+deb12u14
LowGO-2026-4870stdlib@go1.24.61.25.9
LowGO-2026-4971stdlib@go1.24.61.25.10
LowGO-2026-4947stdlib@go1.24.61.25.9
LowGO-2026-5037stdlib@go1.24.61.25.11
LowUBUNTU-CVE-2026-3833gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2024-11407grpc@1.51.1-4.1build5no fix listed
LowDEBIAN-CVE-2026-6791glibc@2.36-9+deb12u13no fix listed
LowUBUNTU-CVE-2026-85091zlib@1:1.3.dfsg-3.1ubuntu2.2no fix listed
LowGO-2026-5972stdlib@go1.24.61.25.13
LowGO-2026-6088stdlib@go1.24.61.25.13
LowGO-2026-6089stdlib@go1.24.61.25.13
LowGO-2026-6090stdlib@go1.24.61.25.13
LowGO-2026-5038stdlib@go1.24.61.25.11
LowDEBIAN-CVE-2026-0861glibc@2.36-9+deb12u132.36-9+deb12u14
LowGO-2026-6218stdlib@go1.24.61.25.13
LowUBUNTU-CVE-2026-42011gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowUBUNTU-CVE-2024-2236libgcrypt20@1.10.3-2ubuntu0.21.12.0-2ubuntu1.1+Fips2
LowUBUNTU-CVE-2026-86145pcre2@10.42-4ubuntu2.1no fix listed
LowGO-2026-6355golang.org/x/crypto@v0.55.00.56.0
LowDEBIAN-CVE-2025-15281glibc@2.36-9+deb12u132.36-9+deb12u14
LowDEBIAN-CVE-2026-5928glibc@2.36-9+deb12u13no fix listed
LowGO-2026-4342stdlib@go1.24.61.24.12
LowUBUNTU-CVE-2023-33953grpc@1.51.1-4.1build5no fix listed
LowUBUNTU-CVE-2023-32731grpc@1.51.1-4.1build5no fix listed
LowGO-2025-4155stdlib@go1.24.61.24.11
LowGO-2025-4014stdlib@go1.24.61.24.8
LowGO-2026-6354golang.org/x/crypto@v0.55.00.56.0
LowUBUNTU-CVE-2026-42012gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
LowGO-2025-4007stdlib@go1.24.61.24.9
LowUBUNTU-CVE-2023-1428grpc@1.51.1-4.1build5no fix listed
LowGO-2025-4013stdlib@go1.24.61.24.8
LowGO-2026-5841github.com/klauspost/compress@v1.18.01.18.7
LowDEBIAN-CVE-2026-5435glibc@2.36-9+deb12u13no fix listed
LowUBUNTU-CVE-2026-6409protobuf@3.21.12-8.2ubuntu0.3no fix listed
LowGO-2026-4946stdlib@go1.24.61.25.9
LowUBUNTU-CVE-2025-5222icu@74.2-1ubuntu3.1no fix listed
LowDEBIAN-CVE-2026-4437glibc@2.36-9+deb12u132.36-9+deb12u14
LowUBUNTU-CVE-2026-42015gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.0.65latesttoday4.0.6520211341,805
4.0.35yesterday4.0.3520211331,799
4.0.212 days ago4.0.2120211331,799
4.0.133 days ago4.0.1320211331,799
4.0.0—4.0.0020211331,782
3.9.985 days ago3.9.9820211331,782
3.9.716 days ago3.9.7120211301,759
3.9.408 days ago3.9.4020221291,769
3.9.279 days ago3.9.2720231301,799
3.9.1810 days ago3.9.1820231301,800
3.8.9911 days ago3.8.9920241331,860
3.8.7114 days ago3.8.7120221341,824
3.8.6815 days ago3.8.6820221321,809
3.8.6316 days ago3.8.6320221321,809
3.8.4318 days ago3.8.4320221321,800
3.8.3119 days ago3.8.3120231431,759
3.8.2820 days ago3.8.2820231451,773
3.8.2321 days ago3.8.2320231451,773
3.8.0—3.8.00——
3.7.9223 days ago3.7.9220211401,680
3.7.8624 days ago3.7.8620211401,680
3.7.8425 days ago3.7.8420211401,680
3.7.8126 days ago3.7.8120211501,721
3.7.6927 days ago3.7.6920211491,715
3.7.6628 days ago3.7.6620211491,715
3.7.5729 days ago3.7.57001376875
3.7.5230 days ago3.7.52001376875
3.7.291 month ago3.7.29001376875

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/magertron/mcp-orchestrator.svg)](https://charts.stackradar.io/charts/magertron/mcp-orchestrator)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Oct 2026 · scanned 6 Oct 2026 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.